In OpenBGPD before 8.1, incorrect handling of BGP update data (length of path attributes) set by a potentially distant remote actor may cause the system to incorrectly reset a session. This is fixed in OpenBSD 7.3 errata 006.
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.
Link | Tags |
---|---|
https://ftp.openbsd.org/pub/OpenBSD/patches/7.3/common/006_bgpd.patch.sig | patch |
https://github.com/openbgpd-portable/openbgpd-portable/releases/tag/8.1 | release notes |
https://blog.benjojo.co.uk/post/bgp-path-attributes-grave-error-handling | third party advisory exploit |
https://news.ycombinator.com/item?id=37305800 | mailing list |
https://www.openbsd.org/errata73.html | release notes |